BWC Cybersecurity Overlord ✭✭✭
Reactions
Comments
-
@Eddy77 the Firewall does not know if the devices are authorized or not to use CC, if you enforce CC on a zone where the device is connected to, you might add it to the "Excluded from Capture Client Enforcement List". This may not be best practicable but I can't thinkg of a better option. --Michael@BWC
-
@IrishDadBod did you fired up a Packet-Monitor for PPPOE-SES and PPPOE-DIS to see what is going on on X1:V10? Maybe your PADI did not get a corresponding PADO, etc. You can debug from here. I'am having a hard time myself with PPPoE on Gen7, but this scenario should work fine. Screenshot is incorrect, it has to be…
-
@hugenetworks congratulations, I guess? 🎉 Or is there a question you like to ask? --Michael@BWC
-
@dspjones as part of the SecureUpgrade registration you can decide to Register&Transfer or just Register for the moment. This gives you around 60 days to finish your setup and run both units. After that time (or earlier) you do the transfer and get the remaining licenses from your old unit on top. The old unit will lose…
-
@joemn oh my, you're probably trapped in some MSW oddity. You might try a different browser or incognito mode. --Michael@BWC
-
@joemn try the other route. --Michael@BWC
-
@joemn you can find the Release Notes on MySonicWall. --Michael@BWC
-
@louismcc I had a similar case in 2013 where a TZ got damaged in a storm. The regional sales manager back than stepped in to approve the transfer. Can't tell how it's done these days but you should talk to your SNWL partner to escalate. I can't imagine that there isn't a solution for this, this would be a showstopper for…
-
@works2020 you might be right about the Tunnel All Mode. I modified my profile and since than the Inactivity Time does not go up, probably due to the former mentioned packets which end up in the Tunnel and hold the Connection alive, because every Device is talking all the Time (telemetry, DNS, ...). --Michael@BWC
-
@works2020 I checked on a 6.5.4.10 for you and it works as intended (even without ticking SSLVPN Inactivity Check), but the Inactivity Time (Idle Time) is only showed properly on the SSL VPN Sessions listing. If the Idle Time does not go up, maybe some packets keeping the Connection alive. I tested with MobileConnect on…
-
@mws92 this would be to easy, you have to search them for yourself on Monitor -> Tools & Monitores -> Connections. It's possible to check what Route a Connection is using, but there is no link to the responsible Access Rule which allows the traffic. If you and others need it, this might be a candidate for a Enhancement…
-
@works2020 your listing does not show any SSL-VPN (NetExtender) Connections, but nevertheless, you enabled "SSLVPN Inactivity Check:" on the SSL VPN Server settings? Firmware Version is what? Just to root out known issues. --Michael@BWC
-
@Chojin I have 6.5.4.10 on a bunch of appliances in the field already and wasn't experiencing any new issues. --Michael@BWC
-
@A_Elliott did you read what I wrote in length above? Either use a Route to Drop_TunnelIf or (a simpler solution) an Access Rule from ANY to WAN rejecting any Traffic to the RFC1918 Objects Group which your have to create by yourself, but we're talking about 3 Objects (+ 1 Group) here, nothing fancy. "Block RFC1918 on WAN…
-
New Firmwares for SMA 100 Series are available now, 10.2.1.5 and 10.2.0.10 are ready to download on MSW. --Michael@BWC


























